Aggregator
新型 Linux 恶意软件 ”sedexp” 利用 udev 规则隐藏信用卡盗刷器
1 year 7 months ago
安全客
CVE-2024-6879 | Quiz and Survey Master Plugin up to 9.1.0 on WordPress cross site scripting
1 year 7 months ago
A vulnerability has been found in Quiz and Survey Master Plugin up to 9.1.0 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-6879. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
黑客可以接管 Ecovacs 家用机器人来监视它们的主人
1 year 7 months ago
安全客
CVE-2024-7313 | Shield Security Plugin up to 20.0.5 on WordPress cross-site request forgery
1 year 7 months ago
A vulnerability, which was classified as problematic, was found in Shield Security Plugin up to 20.0.5 on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2024-7313. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
网络犯罪分子部署新的恶意软件,通过 Android 的近场通信 (NFC) 窃取数据
1 year 7 months ago
安全客
CVE-2024-8073 | Hillstone Networks Web Application Firewall up to 5.5R6-2.8.13 command injection
1 year 7 months ago
A vulnerability, which was classified as very critical, has been found in Hillstone Networks Web Application Firewall up to 5.5R6-2.8.13. This issue affects some unknown processing. The manipulation leads to command injection.
The identification of this vulnerability is CVE-2024-8073. The attack may be initiated remotely. There is no exploit available.
vuldb.com
网络钓鱼攻击通过渐进式网页应用(PWA)针对移动用户
1 year 7 months ago
安全客
CVE-2024-45258 | req Package up to 3.43.3 on Go URL cleanHost missing initialization
1 year 7 months ago
A vulnerability classified as critical was found in req Package up to 3.43.3 on Go. This vulnerability affects the function cleanHost of the component URL Handler. The manipulation leads to missing initialization of a variable.
This vulnerability was named CVE-2024-45258. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-8158 | 9front lib9p authorization
1 year 7 months ago
A vulnerability classified as critical has been found in 9front. This affects an unknown part of the component lib9p. The manipulation leads to authorization bypass.
This vulnerability is uniquely identified as CVE-2024-8158. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
新型投递器PEAKLIGHT Downloader 部署在针对 Windows 的恶意电影下载攻击中
1 year 7 months ago
安全客
新恶意软件 Cthulhu Stealer 以 Apple macOS 用户为目标
1 year 7 months ago
安全客
谷歌 Chrome 浏览器更新修复了被恶意利用的漏洞(CVE-2024-7971)
1 year 7 months ago
安全客
CVE-2024-41996 | Diffie-Hellman Key Agreement Protocol Order D(HE)at resource consumption
1 year 7 months ago
A vulnerability was found in Diffie-Hellman Key Agreement Protocol. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Order Handler. The manipulation leads to resource consumption.
This vulnerability is handled as CVE-2024-41996. The attack may be launched remotely. There is no exploit available. This vulnerability has a historic impact due to its background and reception.
vuldb.com
职场黑神话:TA竟让天命打工人秒变苦命猴子
1 year 7 months ago
安全客
网络身份证是强制,会影响正常上网?公安部详细回应
1 year 7 months ago
网号是由字母和数字组成、不含明文身份信息的网络身份符号;网证是承载网号及自然人非明文身份信息的网络身份认证凭证。
CVE-2014-5623 | penguinchefshop 1.0.1 X.509 Certificate cryptographic issues (VU#582497)
1 year 7 months ago
A vulnerability was found in penguinchefshop 1.0.1. It has been classified as critical. Affected is an unknown function of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is traded as CVE-2014-5623. The attack can only be initiated within the local network. There is no exploit available.
vuldb.com
CVE-2007-1401 | PHP 4.4.6 CrackLib memory corruption (EDB-3431 / XFDB-33032)
1 year 7 months ago
A vulnerability has been found in PHP 4.4.6 and classified as critical. This vulnerability affects unknown code of the component CrackLib. The manipulation leads to memory corruption.
This vulnerability was named CVE-2007-1401. It is possible to launch the attack on the local host. Furthermore, there is an exploit available.
vuldb.com
COBIT框架下的AI安全治理与优化
1 year 7 months ago
在数字时代,人工智能(AI)和机器学习(ML)正在成为创新的基石,企业面临有效治理这些技术的挑战。由ISACA […]
aqniu
《黑神话:悟空》火爆导致Steam崩溃?官方回应:受到DDoS攻击 ;新型安卓恶意软件可利用NFC技术窃取银行卡信息 | 牛览
1 year 7 months ago
新闻速览 •应对离地攻击威胁,NSA联合发布一项新的网络安全指南 •美国联邦航空管理局为飞行器通讯安全提出新规 […]
aqniu